{"id":"CVE-2026-89178","title":"WeenyGenius, a computer lab management system by Howyar Technologies, has an Origin Validation Error vulnerability","summary":"WeenyGenius, a computer lab management system by Howyar Technologies, has an Origin Validation Error vulnerability. Unauthenticated attackers on the same network can spoof the teacher workstation and send broadcast packets, causing stude…","severity":"high","cvss":8.8,"cvssVector":"CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","cwe":["CWE-940"],"vendor":"Howyar","product":"WeenyGenius","affected":["WeenyGenius <= 12.2.031"],"published":"2026-09-11","updated":"2026-09-11","sourceUpdated":"2026-09-11T16:17:50.317","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-89178","references":[{"url":"https://www.twcert.org.tw/en/cp-139-11200-ffc3c-2.html","label":"twcert@cert.org.tw"},{"url":"https://www.twcert.org.tw/tw/cp-132-11201-658c0-1.html","label":"twcert@cert.org.tw"}],"tags":["nvd","cve.org"],"ssvc":{"exploitation":"none","automatable":"no","technicalImpact":"total","timestamp":"2026-09-11T15:30:40.855860Z"},"epss":0.00229,"epssPercentile":0.13919,"ingestedAt":"2026-09-11T16:45:47.860Z","slug":"CVE-2026-89178","body":"## Overview\n\nWeenyGenius, a computer lab management system by Howyar Technologies, has an Origin Validation Error vulnerability. Unauthenticated attackers on the same network can spoof the teacher workstation and send broadcast packets, causing student computers to attempt to establish a connection with the attacker.\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"twilight","depthScore":48,"depthScoreParts":{"impact":48.4,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[]}